CVE-2018-20250: WinRAR Absolute Path Traversal Vulnerability
In WinRAR versions prior to and including 5.61, There is path traversal vulnerability when crafting the filename field of the ACE format (in UNACEV2.dll). When the filename field is manipulated with specific patterns, the destination (extraction) folder is ignored, thus treating the filename as an absolute path.
Other sources
WinRAR Absolute Path Traversal vulnerability leads to Remote Code Execution
— CISA
Affected Software
Event History
Frequently Asked Questions
What is CVE-2018-20250?
CVE-2018-20250 is a path traversal vulnerability in WinRAR versions prior to and including 5.61.
How does CVE-2018-20250 affect WinRAR?
CVE-2018-20250 allows an attacker to manipulate the filename field in the ACE format, resulting in a path traversal vulnerability.
Who is affected by CVE-2018-20250?
Users of WinRAR versions prior to and including 5.61 are affected by CVE-2018-20250.
What is the severity of CVE-2018-20250?
CVE-2018-20250 has a severity rating of 7.8 (High).
How can CVE-2018-20250 be fixed?
To fix CVE-2018-20250, users should update to a version of WinRAR that is later than 5.61.